STAMP/STPA safety analysis of aircraft differential braking correction process

被引:0
|
作者
Liu B. [1 ,2 ]
Hu J. [1 ]
Liu C. [1 ,2 ]
Li J. [1 ,2 ]
机构
[1] Equipment Management and Unmanned Aerial Vehicle Engineering College, Air Force Engineering University, Xi'an
[2] Graduate College, Air Force Engineering University, Xi'an
关键词
Control feedback relationship; Differential braking system; Human-machine coordination; Safety constraint; Unsafe control behavior;
D O I
10.11918/201812044
中图分类号
学科分类号
摘要
To prevent the occurrence of danger or accident during the correction process of all-electric differential braking, the safety problem was regarded as a control problem, and the safety analysis based on STAMP/STPA was carried out from the control point of view. First, based on the system-theoretic accident model and process (STAMP), the STAMP model of the aircraft all-electric differential braking system considering human-machine coordination was established to determine the control feedback relationship of the entire differential braking system. Then, the system theoretic process analysis (STPA) method was used to analyze the safety of the differential braking correction process, determine system-level accidents and hazards, identify potential risks and unsafe control actions (UCA), and conduct qualitative analysis of UCA from the aspects of control, feedback, and coordination. Finally, an airplane ground sliding model was established to simulate and analyze some unsafe control behaviors (UCA1, UCA2, and UCA5) that occurred during the correction process. Simulation results show that the differential braking action was not provided in the case of 1° initial yaw angle or 1 m/s continuous crosswind, and the aircraft was out of the runway after 5 s; the differential braking action delay occurred at 1° initial yaw angle (with no crosswind), and the aircraft was out of the runway when the delay was greater than 5 s. From the quantitative point of view, the safety constraints of the aircraft all-electric differential braking correction process were proposed, and the effectiveness of the STAMP/STPA method was verified. © 2020, Editorial Board of Journal of Harbin Institute of Technology. All right reserved.
引用
收藏
页码:66 / 73
页数:7
相关论文
共 18 条
  • [1] Neumann P., Safeware: System safety and computers, ACM SIGSOFT Software Engineering Notes, 20, 5, (1995)
  • [2] Zheng L., Hu J., Safety analysis of wheel brake system based on STAMP/STPA, Acta Aeronautica et Astronautica Sinica, 38, 1, (2017)
  • [3] Chiozza M.L., Ponzetti C., FMEA: A model for reducing medical errors, Clinica Chimica Acta, 404, 1, (2009)
  • [4] Mahajan H.S., Bradley T., Pasricha S., Application of systems theoretic process analysis to a lane keeping assist system, Reliability Engineering & System Safety, 167, (2017)
  • [5] Rasmussen J., Risk management in a dynamic society: A modelling problem, Safety Science, 27, 2-3, (1997)
  • [6] Erik H., The changing nature of risk, Biological Bulletin, 19, 3, (2008)
  • [7] Placke M.S., Application of STPA to the integration of multiple control systems: A case study and new approach, (2014)
  • [8] Allison C.K., Revell K.M., Stanton N., Et al., Systems theoretic accident model and process (STAMP) safety modelling applied to an aircraft rapid decompression event, Safety Science, 98, (2017)
  • [9] Ishimatsu T., Leveson N.G., Thomas J.P., Et al., Hazard analysis of complex spacecraft using systems-theoretic process analysis, Journal of Spacecraft & Rockets, 51, 2, (2014)
  • [10] Schmid D., Pilot homicide-suicide: A system-theoretic process analysis (STPA) of germanwings GWI18G, International Conference on Applied Human Factors and Ergonomics, (2018)